Re: Dual https on same server not working



Use SSLDiag to troubleshoot.

http://blogs.msdn.com/david.wang/archive/2006/01/18/IIS-Diagnostics-Toolkit-January-2006-Released.aspx

Your steps are fine because you don't need to regenerate cert requests
nor re-issue certificates. You just need to make sure you have the
Server Certificate and its private key and that both are imported to
the right Secure Store. All the wizards and other steps simply ensure
you do the right things.



//David
http://w3-4u.blogspot.com
http://blogs.msdn.com/David.Wang
//


Norm wrote:
IIS 6.0 on MS Exchange Front-end server.
Two sites (mail.domain.com and mail2.domain.com) each listening on its own
IP address. mail for OWA and mail2 for OMA/ActiveSync
Two certs are imported into the local store.
If I "view certificate" on each of the web sites, the correct certificate
show up. Both sites are using port 443 for SSL.
mail works fine, but when i go to mail2 (using it's name or the IP), IIS
seems to be feeding up the cert associated with "mail.", causing the browser
to report an unmatched certificate.

the only thing I can think of is that the cert for mail2 was assigned to the
web site and I later deleted the entire site because it was set up wrong. I
then imported the cert again without generating a new cert request and
getting the cert authority to re-issue it. Is this my problem?

.



Relevant Pages

  • Re: ADFS Token-signing Certs Not in Trusted Root Store
    ... This is good info, Joe. ... So now I know that the token-signing certificate is ... Get a signing cert from a CA ... case, you never have to worry about expiration or CRL checking, as your cert ...
    (microsoft.public.windows.server.active_directory)
  • Re: Issues with SSL on Win CE 5.0
    ... the HKCU certificate store. ... and tell the web server to use it. ... The old cert was in. ...
    (microsoft.public.windowsce.embedded)
  • Re: Accessing certificate store from ASP.NET web project
    ... the cert must be in the local computer/personal) store - it will then open ... Have a look at the source code to open the right cert store... ... One of the locations requires a x509 certificate in order ... different user context than my vb.net web project. ...
    (microsoft.public.dotnet.security)
  • Re: Activesync between Windows Mobile 5 and SBS2003 gives error
    ... If you don't find a cert here that matches the URL for OWA, you need to re-run the CEICW wizard on the SBS box and re-create the self signed cert. ... I exported the certificate straight from the server. ... Treo 700wx running Windows Mobile 5. ...
    (microsoft.public.windows.server.sbs)
  • Re: Dummies Guide for RADIUS/Certs
    ... I have set up IAS. ... client computers impacts certificate enrollment. ... configure Group Policy for domain member wireless clients so ... Cert Templates that is now enrolled on the IAS server. ...
    (microsoft.public.internet.radius)

Quantcast